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Amendments To Claims: 

This listing of claims will replace all prior versions, and listings, of claims in the application: 

Listing of Claims: 
Claims 1-17 (cancelled). 

18. (currently amended) An online card present transaction method comprising the steps of: 
receiving, at a host website, an HTTP request from a «9er^-bro wser of a user, said request 

having been redirected from a merchants website of a merchant to said host website; 
sending said user a challenge string; 

authenticating said user by receiving authentication information from said user, wherein said 
authentication information corresponds to s aid usor'a ^transaction account pf said user; 

generating a secondary transaction account numbe r, wherein said secondary transaction 
account number is valid for a single purchase transaction: 

associating said secondary transaction account number with sai d ugor'o transaction account 
of said user : 

establishing an authenticated communication channel via an authentication process between 
a host system and said merchant; and 

communicating said secondary transaction account number over said authenticated 
communication channel to said merchant, wherein said merchant submits a payment request based 
on said secondary transaction account number. 

19. (currently amended) The method of claim 1 8, wherein said authentication process comprises 
the steps of: 

embedding an encrypted host system signature in said uoer - ' - e browser of said user, and 
redirecting said usor'9 browser of said user to said merchant, causing said merchant to 
authenticate said host system by decrypting said host system signature. 

20. (currently amended) The method of claim 1 8, wherein said authentication process comprises 
the sjeps of: 

communicating a token to said merchant over a first communication channel; 
receiving a communication from said merchant over a second communication channel 
requesting said host system to confirm the issuance of said token; and 

confirming to said merchant that said host system issued said token. 
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21. (original) The method of claim 18, further comprising the steps of prompting said userto 
insert a smart card into a smart card reader and to enter a personal identification number. 

22. (original) The method of claim 1 8, wherein said authentication information comprises a 
signed challenge string and a digital certificate. 

23. (currently amended) An online-card-present transaction method comprising the steps of: 
communicating with a user over a distributed network; 

recognizing the ajpresence of an authentication device on a user' s computer system ofa 

user; 

redirecting said user to a host system website, causing said host system to authenticate said 
user based on data extracted fiom a transaction instrument by said authentication device; 

generating a secondary transaction account numbe r, wherein said secondary transaction 
account number is valid for a single purchase transaction: 

associating said secondary transaction account number with an account of said user; 

establishing an authenticated communication channel with said host system; 

communicating said secondary transaction account number over said authenticated 
communication channel to said user, wherein said user submits a payment request based on said 
secondary transaction account number; and, 

receiving account information including said secondary transaction account number from 
said host system over said authenticated communication channel, wherein said account information 
and said secondary transaction account number facilitates completion ofa transaction between said 
user and a merchant. 

24. (currently amended) The method of claim 23, wherein said step of generating said secondary 
transaction account number comprises the steps of: 

receiving an encrypted host system signature; and 

decrypting said encrypted host system signature to determine that said account information 
originated with said host system. 

25. (original) The method of claim 23, said establishing an authenticated communication 
channel step further comprising the steps of: 

receiving a host system token over a first communication channel, wherein said token 
identifies said host system; and 
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communicating to said host system over a second communication channel to confirm that 
said token was issued by said host system. 
Claims 26-34 (cancelled). 

35. (currently amended) An online card^present transaction method, comprising the steps of: 
establishing an authenticated communication channel; 

receiving from a merchant over said authenticated communication channel, a user request to 
facilitate a transaction with said merchant; 

communicating to a said m erchant a challenge string to facilitate a user authentication 

process; 

retrieving from said merchant a signed challenge string and a digital certificate originating 
from a user, whoroin s aid challenge string and s aid digital certificate aro distinct from oaoh other 
aad? wherein said user is authenticated by comparing said signed challenge string and said digital 
certificate; 

retrieving a primary transaction account number associated with said digital certificate; 

generating a secondary transaction account numbe r, wherein said secondary tr ansaction 
account number is valid for a single purcha se transaction: 

associating said secondary transaction account number with said primary transaction 
account number; and 

providing said secondary transaction account number to said merchant, wherein said 
merchant submits a payment request based on said secondary transaction account number. 

36. (previously presented) The method of claim 35, further comprising causing said user to 
insert a smart card into a smart card reader and input a personal identification number. 

37. (currently amended) The method of claim 35, further comprising the steps of: 
receiving said secondary transaction account number from said merchant as part of a 

settlement process; and, 

applying a charge associated with said settlement process to a transaction account of said 
user associated with said secondary account transaction number. 
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